We have a Cisco WSA for filtering and inspecting traffic at our office and since the upgrade to v14 I am getting certificate errors every day. The error message is "The certificate for devolutions.net couldn't be verified. Do you want to continue?"
I can view the certificate. It is valid. It is signed by our WSA and the signing certificate is trusted, the full certificate chain is trusted, but this message keeps coming up. I have clicked 'Continue and Remember' but it seems every day I get the prompt when I open the application and have to click 'Continue and remember' again, it's not remembering..
Hello,
Could you please have a look at this help article to see it can help you resolve the issue?
https://help.remotedesktopmanager.com/kb_security_certificatevalidation.htm
Best regards,
Mark Beausejour
Which part? I'm assuming the "Ignore application certificate errors" setting? What are the implications of disabling this? Does this certificate check only get used for pings back to devolutions.net, or will this mask certificate errors connecting to various hosts, for example using RDP? I don't want certificate errors disabled for any connections I make with the application to remote hosts..
Hi Jeff,
This certificate validation is not used for RDP certificate validation. It is used for every web requests done by the application in the background.
It verifies that the chain is valid using the windows certificate store.
The continue and remember button remembers the certificate by its thumbprint. It is stored in the RemoteDesktopManager.cfg file under the name of ApplicationKnownCertificatesArray.
Could you verify if a certificate is stored in the configuration file?
Best regards
Mathieu Morrissette
Hi,
This Mathieu Morrissette from the Devolutions Security Team.
I just wanted to let you know that we have made changes to the certificate validation mechanism in RDM 2021.2.9.0 and above that should solve issues some users were experiencing.
Let us know if you still have the certificate warning message.
Best regards,
Mathieu Morrissette
Hii,
I’ve been seeing the same issue since upgrading to v14 with WSA in place. Even though the certificate is valid and trusted, the prompt keeps appearing daily. It seems like RDM isn’t properly remembering the “Continue and Remember” choice. Based on what Mathieu from Devolutions shared, updating to RDM 2021.2.9.0 or later should fix this, as they’ve improved the certificate validation process. Worth trying, especially if you’re using SSL inspection or a verified mark certificate setup.
I hope it helps!